In this intensive, high-enegy, two-day network security training seminar, you will gain an understanding of how intruders and hackers think when attacking a network. You will learn how to minimize vulnerabilities in various areas including telecommuting, e-mail security, and web services. See real world examples and demonstrations of how attacks operate and learn how to build strategies against these attacks. This accelerated course will provide you with the right tools and skills you need to effectively evaluate network security and implement security best practices.
Newly Revised and Updated!
Price: $995.00
(Save 11% per person with 1 or more attendees: $895.00 each!)
Course Objectives
By the end of this two-day network security training seminar, you will...
Gain an understanding of vulnerabilities, threats, and attacks on system and network security
Practice identifying the threats to your systems
Practice writing a security policy for your organization
Know how Authentication, Authorization, and Accounting (AAA) works as a critical element of security
Understand the importance of physical security
Gain a thorough understanding of how a PKI works to implement security
Know the fundamentals of securing email
Understand the fundamentals of securing remote access including options for Virtual Private Networks (VPNs)
Gain a solid understanding of wireless network security best practices
Know the critical aspects of Web security best practices
Understand options and best practices for intrusion detection systems (IDS)
Certifications and Exams
This two-day network security training seminar is designed for working IT professionals and tech-savvy business people who need to quickly get a handle on network and system security best practices. It is not designed as a test-taker's "boot camp". Security+ candidates will, however, find it helpful in preparing for certification exams.
Who should attend?
Our professional-level network security workshops and network security classes are designed for IT professionals who are responsible for installing, configuring, supporting, optimizing, and troubleshooting network security. Attendees include network administrators, system administrators, desktop support personnel, or anyone responsible for ensuring the security of their organizations' systems and data.
Course Outline
Module One: An Overview of Network and System Security
In this module, youll learn about the types of vulnerabilities and threats to network security, plus the attacks that take advantage of such vulnerabilities. Youll learn how to design an effective security policy for your organization. Well help you understand the critical security process that you should use in implementing secure systems. Youll gain an understanding of the legal aspects of security and the legal dangers of non-security. Well explain AAA (Authentication, Authorization, and Accounting) and its importance in network security. The module concludes with a thorough understanding of Defense-in-Depth and how you can use it to secure your network.
An introduction to vulnerabilities, threats, and attacks
Understanding the security process
The legal aspects of security and non-security
An introduction to AAA (Authentication, Authorization, and Accounting)
Understanding Defense-in-Depth
Designing your organizational security policies and procedures
Module Two: AAA (Authentication, Authorization, and Accounting)
AAA is a combination of technology that allow you to ensure you know who is gaining access to your systems and networks, control what theyre allowed to see and do, and have a record of what they did. AAA is fundamental to network security and in this module youll learn the most common means of authenticating users. Well show you how to understand Windows, Linux, and Cisco privilege levels. Youll also learn two methods for logging activity by users.
Authentication methods including usernames, passwords
Kerberos
Challenge Handshake Authentication Protocol
Security tokens
Digital certificates
Biometrics
Future authentication factors
Privilege levels
Logging options including Event Viewer and syslog
Module Three: Vulnerabilities, Threats, and Attacks
In this module, youll gain an understanding of how and why vulnerabilities exist, the threats created by the vulnerabilities, and the types of attacks that take advantage of the vulnerabilities. Youll learn about man-in-the-middle attacks, denial-of-service attacks, replays, spoofing, TCP session hijacking, and other threats and attacks.
Types of attacks including reconnaissance, access, and denial-of-service
Social engineering
Software exploitation
Module Four: Understanding Cryptography
Module four is all about encryption. Youll learn about single-key cryptography and the benefits of using a Public Key Infrastructure (PKI). Well show you how to get and install certificates from third-parties, plus youll learn how to set up and operate your own certificate server.
Basics of cryptography
Single key cryptography
Public Key Infrastructure (PKI)
Key management
Acquiring third-party certificates
Installing a certificate server
Module Five: Email Security
Email is now the primary communication method of business. Unfortunately, email is notoriously non-secure. It is, however, possible to secure email and in this module, youll learn about the vulnerabilities of email and how to use it securely.
Understanding email vulnerabilities
Securing email
PGP and S/MIME encryption
Module Six: Securing Remote Access
Remote users are quickly becoming the norm, whether its a traveling user or a telecommuter. Remote access, although very convenient, presents serious security concerns in terms in terms of opening your networks and systems to external threats. In this module, youll learn about the threats created by remote users and options for minimizing them. Youll also learn about options for creating and managing Virtual Private Networks (VPNs).
Remote access vulnerabilities
Understanding options for Virtual Private Networks (VPNs)
Module Six: Wireless Security
Wireless networking is incredibly convenient, but fraught with peril for the naïve user. In this module, youll learn about the dangers of wireless networking and key strategies and technologies for securing wireless networks.
Understanding IEEE 802.11 and its extensions
Wireless encryption technologies including WEP, WPA, and WPA2
Other Wi-Fi security procedures
Module Seven: Web Security
It seems like nearly every day we hear of another vulnerability related to the World Wide Web. In this module, youll learn about basic best practices for using various Web services, whether at a server level or in Web browsers.
Understanding SSL and TLS
Understanding the risks of Web applications such as JavaScript and ActiveX
The importance of securing SMTP relays
Web server security
Browser security
Module Eight: Intrusion Detection
In spite of our best efforts, sometimes the bad guys gain entrance to our systems or networks. When that happens, its critically important to be aware of the intrusion as soon as possible. In this module, well introduce you to intrusion detection systems, including the various types of IDS available and examples of how to use them.
Intrusion detection systems
Host-based IDS
Protocol-based IDS
Application-protocol based IDS
Passive vs. active detection
Snort
Honeypots
Prerequisites
This is a professional-level network security and computer security class. Prospective students should have a basic understanding of computer and networking concepts and technologies. Please contact us for help in deciding if this is the right network security training for you.
This seminar is currently available only for onsite presentation. Onsite training can make sense for groups of four or more. It may be offered publicly in the future, so please check back frequently or call 206.988.5858 for the latest schedule updates. Please click here for more information about soundtraining.net's onsite training programs.
Schedule and Registration
Registration: 8:30 a.m. to 9:00 a.m. Morning session: 9:00 a.m. to noon Lunch (on your own): Noon to 1:00 p.m. Afternoon session: 1:00 p.m. to 4:00 p.m.
Onsite Training
Bring us onsite to your location! All of soundtraining.net's outstanding training programs are available for presentation onsite at your location (or the location of your choice). You choose the time, the topic, and the location and we'll be there with top-notch training, delivered by the best trainers in the industry. Practical, understandable, and relevant is what makes the soundtraining.net difference! Call 206.988.5858 or click the link for more information about bringing training right to your door.